Welcome!

Cloud Security Authors: Elizabeth White, Harry Trott, Liz McMillan, Peter Silva, Tom Kemp

Related Topics: @CloudExpo, Cloud Security, Government Cloud

@CloudExpo: Article

Is Cloud Computing for Real?

Summary of Session by CIO of the National Reconnaissance Office at Cloud Expo New York

In October 2009, Enterprise Cloud Computing was considered bleeding edge technology by many but there was something that seemed different about its value potential and adoption rate. For CIOs, it seemed a chance to provision affordable infrastructure quickly, alleviating delays to mission critical deliveries. Federal CIOs interest in Enterprise Cloud Computing was limited to innovators and early adopters. Two years later, where does Enterprise Cloud Computing stand? Is it for real?



Today, Cloud Computing is on the Gartner® technology hype curve in the “peak of inflated expectations” category. Its placement on the curve—even though we all should prepare for the dreaded “trough of disillusionment” dip—indicates Cloud Computing is, indeed, for real. There are other indicators of note also. CIOs across the board are focused on the success Cloud Computing can deliver. Vendors are sparring with each other to obtain space in Gartner’s Magic Quadrant. The Federal CIO has issued a “Cloud First” policy and published the first Federal Cloud Computing Strategy. And, it’s been featured in the hit comic strip Dilbert—a pop culture indicator worth noting!

Federal agencies need IT solutions that can handle current missions—from supporting counter-terrorism to combating proliferation of weapons of mass destruction--and we need IT that can handle global surge demands based on fluctuating world events and natural disasters. Federal IT must be efficiently adaptable and properly affordable to meet evolving mission needs. It must be capable of keeping pace with the exponential growth of data, including the increasing complexities of maintaining legal and regulatory compliance of information management and assurance.

As a CIO, building your cloud strategy can be confusing as there are many options to consider before making a decision. Cloud Computing can deliver within a variety of characteristics. Each CIO will need to consider the characteristics of primary importance in order to properly center a strategy. For example, determining your needs for rapid elasticity, on-demand self-service, global access, and payment options will be necessary to develop the right strategy. The second consideration for a CIO is just how far up the stack she wants to go. Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS) each deliver different features and capabilities for your business. You can develop a plan that includes some or all of the Services. Finally, a CIO needs to think about the deployment model(s) that best fit her business (Public, Private, Community, and Hybrid).

Cloud Computing isn’t perfect; there are concerns to manage and mistakes to avoid. The number one concern remains Security and that’s given rise to Enterprise Cloud Computing deployments and private clouds. But, there are other concerns also such as the skill set of your workforce, requirements for compliance verification, legacy baseline migration, and costs. For example, depending on the percentage of your legacy that can successfully transition to Cloud, your cost-benefit equation may not provide sufficient return for the investment.

Common mistakes to avoid include: assuming Cloud Computing is for everything; planning for a “light switch” migration from legacy to new; selecting only one vendor and creating early lock-in; underestimating the cultural change required by your own IT team; and implementing a bunch of mini- clouds in your existing data closets.

We’ve spent 18 months developing the National Reconnaissance Office (NRO) IT strategy and roadmap; we gave it a lot of thought but it is just an example and not the only way to move forward. Our cloud delivery model will be private first and then a hybrid of private and community (with our Intelligence Community colleagues). We’re moving our way up the stack starting with IaaS and PaaS first, then SaaS. And, we are focused on a phased revolutionary approach—building a new environment as a green field.

Our planning has highlighted the need to focus attention on management of the NRO Cloud. Defining specific roles and responsibilities, articulating cloud service level agreements between the provider and users, adjusting organizational constructs to fit the Cloud business model, and streamlining configuration control processes to meet the rapid timelines of provisioning must all be addressed if success is to be achieved. Our planning also indicated the NRO mission would not be served by a CPU-based commodity cloud alone. We also need a high-performance cloud that is GPU-based and we are learning there are industry gaps in this area.

The NRO Cloud strategy won’t be too different from how other Federal agencies adopt Cloud Computing. Most agencies processing classified information are focused on private clouds versus public clouds for security and information management/assurance reasons. Over time, though, I believe federal community clouds will emerge, as will private hybrid clouds, which allow agencies to maintain a private space as well as take advantage of federal community clouds.

The NRO Cloud will be implemented in four phases over the course of 6 years. It’s a complex migration necessarily paced to meet federal budget processes, existing acquisition commitments, and mission service imperatives.

  • Phase 1 – Test It. We have multiple small cloud pilots ongoing covering commodity/utility cloud, high performance cloud, and big data cloud. We are focused on streamlining information assurance compliance, developing appropriate policies and processes, and defining standards.
  • Phase 2 – Prove It. In this phase, we will merge successful elements from Phase 1, finalize policies, prototype management and governance changes necessary for cloud provisioning models, refine standards, realign programs as needed, and ensure enterprise foundation capabilities meet mission demands.
  • Phase 3 – Use It. Scaled deployment of the enterprise Cloud will occur. Applications will develop specific transition and migration plans generally aligned with planned refresh cycles. Service management processes and new centralized information assurance approaches will be refined for long-term success.
  • Phase 4 – Exploit It. The NRO Cloud will emerge as the primary Enterprise Infrastructure Services Provider with robust measures of effectiveness, performance accountability, and service transparency. New mission and business applications will emerge through innovations in Cloud Computing and federation with the IC Cloud will be achieved moving the NRO into a hybrid environment.

In summary, the time for Cloud Computing is now. All of the indicators are in place to suggest a rapid and successful migration to this newest generation of IT architecture. It is not a one-size-fits-all migration. CIOs will need to spend time exploring Cloud Computing solutions to find the combination that best responds to specific mission and business needs. Maintaining awareness of the concerns and mistakes is absolutely necessary and security remains the top concern. Security is a huge focus for IT vendors and creative, robust solutions will be constantly emerging to reduce concerns. Large organizations will increasingly turn to Enterprise Cloud Computing strategies to achieve efficiencies of Cloud Computing while reducing risks of exposure for intellectual property, customer privacy, and competitive strategies.

More Stories By Jill Tummler Singer

Jill Tummler Singer is CIO for the National Reconnaissance Office (NRO)- which as part of the 16-member Intelligence Community plays a primary role in achieving information superiority for the U.S. Government and Armed Forces. A DoD agency, the NRO is staffed by DoD and CIA personnel. It is funded through the National Reconnaissance Program, part of the National Foreign Intelligence Program.

Prior to joining the NRO, Singer was Deputy CIO at the Central Intelligence Agency (CIA), where she was responsible for ensuring CIA had the information, technology, and infrastructure necessary to effectively execute its missions. Prior to her appointment as Deputy CIO, she served as the Director of the Diplomatic Telecommunications Service (DTS), United States Department of State, and was responsible for global network services to US foreign missions.

Singer has served in several senior leadership positions within the Federal Government. She was the head of Systems Engineering, Architecture, and Planning for CIA's global infrastructure organization. She served as the Director of Architecture and Implementation for the Intelligence Community CIO and pioneered the technology and management concepts that are the basis for multi-agency secure collaboration. She also served within CIA’s Directorate of Science and Technology.

Comments (1) View Comments

Share your thoughts on this story.

Add your comment
You must be signed in to add a comment. Sign-in | Register

In accordance with our Comment Policy, we encourage comments that are on topic, relevant and to-the-point. We will remove comments that include profanity, personal attacks, racial slurs, threats of violence, or other inappropriate material that violates our Terms and Conditions, and will block users who make repeated violations. We ask all readers to expect diversity of opinion and to treat one another with dignity and respect.


Most Recent Comments
Elad Israeli 06/20/11 08:48:00 AM EDT

I can relate to many points you list here. I come from the business intelligence space, where the Cloud and SaaS are way overly hyped - mainly due to some startups in the space.

http://tinyurl.com/saas-bi

@ThingsExpo Stories
SYS-CON Events announced today that 910Telecom will exhibit at the 19th International Cloud Expo, which will take place on November 1–3, 2016, at the Santa Clara Convention Center in Santa Clara, CA. Housed in the classic Denver Gas & Electric Building, 910 15th St., 910Telecom is a carrier-neutral telecom hotel located in the heart of Denver. Adjacent to CenturyLink, AT&T, and Denver Main, 910Telecom offers connectivity to all major carriers, Internet service providers, Internet backbones and ...
SYS-CON Events announced today that Numerex Corp, a leading provider of managed enterprise solutions enabling the Internet of Things (IoT), will exhibit at the 19th International Cloud Expo | @ThingsExpo, which will take place on November 1–3, 2016, at the Santa Clara Convention Center in Santa Clara, CA. Numerex Corp. (NASDAQ:NMRX) is a leading provider of managed enterprise solutions enabling the Internet of Things (IoT). The Company's solutions produce new revenue streams or create operating...
The Internet of Things can drive efficiency for airlines and airports. In their session at @ThingsExpo, Shyam Varan Nath, Principal Architect with GE, and Sudip Majumder, senior director of development at Oracle, will discuss the technical details of the connected airline baggage and related social media solutions. These IoT applications will enhance travelers' journey experience and drive efficiency for the airlines and the airports. The session will include a working demo and a technical d...
Although it has gained significant traction in the consumer space, IoT is still in the early stages of adoption in enterprises environments. However, many companies are working on initiatives like Industry 4.0 that includes IoT as one of the key disruptive technologies expected to reshape businesses of tomorrow. The key challenges will be availability, robustness and reliability of networks that connect devices in a business environment. Software Defined Wide Area Network (SD-WAN) is expected to...
Developing software for the Internet of Things (IoT) comes with its own set of challenges. Security, privacy, and unified standards are a few key issues. In addition, each IoT product is comprised of (at least) three separate application components: the software embedded in the device, the back-end service, and the mobile application for the end user’s controls. Each component is developed by a different team, using different technologies and practices, and deployed to a different stack/target –...
Internet of @ThingsExpo, taking place November 1-3, 2016, at the Santa Clara Convention Center in Santa Clara, CA, is co-located with 19th Cloud Expo and will feature technical sessions from a rock star conference faculty and the leading industry players in the world. The Internet of Things (IoT) is the most profound change in personal and enterprise IT since the creation of the Worldwide Web more than 20 years ago. All major researchers estimate there will be tens of billions devices - comp...
As cloud adoption continues to transform business, today’s global enterprises are challenged with managing a growing amount of information living outside of the data center. The rapid adoption of IoT and increasingly mobile workforce are exacerbating the problem. Ensuring secure data sharing and efficient backup poses capacity and bandwidth considerations as well as policy and regulatory compliance issues.
Why do your mobile transformations need to happen today? Mobile is the strategy that enterprise transformation centers on to drive customer engagement. In his general session at @ThingsExpo, Roger Woods, Director, Mobile Product & Strategy – Adobe Marketing Cloud, covered key IoT and mobile trends that are forcing mobile transformation, key components of a solid mobile strategy and explored how brands are effectively driving mobile change throughout the enterprise.
Data is the fuel that drives the machine learning algorithmic engines and ultimately provides the business value. In his session at Cloud Expo, Ed Featherston, a director and senior enterprise architect at Collaborative Consulting, will discuss the key considerations around quality, volume, timeliness, and pedigree that must be dealt with in order to properly fuel that engine.
19th Cloud Expo, taking place November 1-3, 2016, at the Santa Clara Convention Center in Santa Clara, CA, will feature technical sessions from a rock star conference faculty and the leading industry players in the world. Cloud computing is now being embraced by a majority of enterprises of all sizes. Yesterday's debate about public vs. private has transformed into the reality of hybrid cloud: a recent survey shows that 74% of enterprises have a hybrid cloud strategy. Meanwhile, 94% of enterpri...
Data is an unusual currency; it is not restricted by the same transactional limitations as money or people. In fact, the more that you leverage your data across multiple business use cases, the more valuable it becomes to the organization. And the same can be said about the organization’s analytics. In his session at 19th Cloud Expo, Bill Schmarzo, CTO for the Big Data Practice at EMC, will introduce a methodology for capturing, enriching and sharing data (and analytics) across the organizati...
SYS-CON Events announced today that Pulzze Systems will exhibit at the 19th International Cloud Expo, which will take place on November 1–3, 2016, at the Santa Clara Convention Center in Santa Clara, CA. Pulzze Systems, Inc. provides infrastructure products for the Internet of Things to enable any connected device and system to carry out matched operations without programming. For more information, visit http://www.pulzzesystems.com.
SYS-CON Events announced today Telecom Reseller has been named “Media Sponsor” of SYS-CON's 19th International Cloud Expo, which will take place on November 1–3, 2016, at the Santa Clara Convention Center in Santa Clara, CA. Telecom Reseller reports on Unified Communications, UCaaS, BPaaS for enterprise and SMBs. They report extensively on both customer premises based solutions such as IP-PBX as well as cloud based and hosted platforms.
Almost two-thirds of companies either have or soon will have IoT as the backbone of their business in 2016. However, IoT is far more complex than most firms expected. How can you not get trapped in the pitfalls? In his session at @ThingsExpo, Tony Shan, a renowned visionary and thought leader, will introduce a holistic method of IoTification, which is the process of IoTifying the existing technology and business models to adopt and leverage IoT. He will drill down to the components in this fra...
Pulzze Systems was happy to participate in such a premier event and thankful to be receiving the winning investment and global network support from G-Startup Worldwide. It is an exciting time for Pulzze to showcase the effectiveness of innovative technologies and enable them to make the world smarter and better. The reputable contest is held to identify promising startups around the globe that are assured to change the world through their innovative products and disruptive technologies. There w...
There is growing need for data-driven applications and the need for digital platforms to build these apps. In his session at 19th Cloud Expo, Muddu Sudhakar, VP and GM of Security & IoT at Splunk, will cover different PaaS solutions and Big Data platforms that are available to build applications. In addition, AI and machine learning are creating new requirements that developers need in the building of next-gen apps. The next-generation digital platforms have some of the past platform needs a...
With so much going on in this space you could be forgiven for thinking you were always working with yesterday’s technologies. So much change, so quickly. What do you do if you have to build a solution from the ground up that is expected to live in the field for at least 5-10 years? This is the challenge we faced when we looked to refresh our existing 10-year-old custom hardware stack to measure the fullness of trash cans and compactors.
The emerging Internet of Everything creates tremendous new opportunities for customer engagement and business model innovation. However, enterprises must overcome a number of critical challenges to bring these new solutions to market. In his session at @ThingsExpo, Michael Martin, CTO/CIO at nfrastructure, outlined these key challenges and recommended approaches for overcoming them to achieve speed and agility in the design, development and implementation of Internet of Everything solutions wi...
Today we can collect lots and lots of performance data. We build beautiful dashboards and even have fancy query languages to access and transform the data. Still performance data is a secret language only a couple of people understand. The more business becomes digital the more stakeholders are interested in this data including how it relates to business. Some of these people have never used a monitoring tool before. They have a question on their mind like “How is my application doing” but no id...
Cloud computing is being adopted in one form or another by 94% of enterprises today. Tens of billions of new devices are being connected to The Internet of Things. And Big Data is driving this bus. An exponential increase is expected in the amount of information being processed, managed, analyzed, and acted upon by enterprise IT. This amazing is not part of some distant future - it is happening today. One report shows a 650% increase in enterprise data by 2020. Other estimates are even higher....